Security Incident Report
Incident reports are an important part of the forensics investigation. In this security incident report, I document a DOS attack using remote desktop services (RDS) on port 3389. In the report I note the containment steps taken, counter measures deployed, and recommended non-countermeasures controls to mitigate future attacks.